7.2
CVSSv2

CVE-2001-0221

Published: 02/06/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in ja-xklock 2.7.1 and previous versions allows local users to gain root privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd ja-xklock

Exploits

/* * xklock - FreeBSD 351 & 42 ports package local root exploit * * The X key lock program contain several exploitable buffer overflows * in command line arguments aswell as the 'JNAME' environment variable * xklock is installed setuid root by default * This POC exploit (ab)uses the -bg arg, brute force offset if required * * Usa ...